Pixarra develops a suite of digital art and painting applications—including TwistedBrush Pro Studio, Blob Studio, Liquid Studio, Luminance Studio, and Paint Studio—that expose a niche but concentrated set of content-processing and file-handling vulnerabilities. The recurring weakness classes, centered on improper bounds checking, index validation, buffer sizing, and filename handling, reflect the memory-safety and input-parsing demands of image-manipulation codebases. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pixarra over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-25557MEDIUM TwistedBrush Pro Studio 24.06 contains a denial of service vulnerability that allows local attackers to crash the application by importing a malformed .srp script file. Attackers c | Mar 21, 2026 | 6.2 | 23 | NO | NO |
CVE-2019-25555HIGH TwistedBrush Pro Studio 24.06 contains a denial of service vulnerability in the Script Recorder component that allows local attackers to crash the application by supplying an exces | Mar 21, 2026 | 7.1 | 23 | NO | NO |
CVE-2019-25558MEDIUM Selfie Studio 2.17 contains a denial of service vulnerability in the Resize Image function that allows local attackers to crash the application by supplying an excessively long buf | Mar 21, 2026 | 6.2 | 21 | NO | NO |
CVE-2019-25556MEDIUM TwistedBrush Pro Studio 24.06 contains a denial of service vulnerability in the Resize Image function that allows local attackers to crash the application by supplying an excessive | Mar 21, 2026 | 6.2 | 21 | NO | NO |
CVE-2019-25625MEDIUM Blob Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the key entry mechanism. Attac | Mar 23, 2026 | 6.2 | 20 | NO | NO |
CVE-2019-25624MEDIUM Liquid Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Atta | Mar 23, 2026 | 6.2 | 20 | NO | NO |
CVE-2019-25623MEDIUM Luminance Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. A | Mar 23, 2026 | 6.2 | 20 | NO | NO |
CVE-2019-25622MEDIUM Paint Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the key entry mechanism. Atta | Mar 23, 2026 | 6.2 | 20 | NO | NO |
CVE-2019-25621MEDIUM Pixel Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attac | Mar 23, 2026 | 6.2 | 20 | NO | NO |
CVE-2019-25620MEDIUM Tree Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attack | Mar 23, 2026 | 6.2 | 20 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pixarra.
Media articles that mention a CVE ID that affects a product developed by Pixarra — matched by CVE ID, not by vendor name.